Vulnerability Name:

CVE-2009-1784 (CCN-50426)

Assigned:2009-05-08
Published:2009-05-08
Updated:2020-02-10
Summary:The AVG parsing engine 8.5 323, as used in multiple AVG anti-virus products including Anti-Virus Network Edition, Internet Security Netzwerk Edition, Server Edition für Linux/FreeBSD, Anti-Virus SBS Edition, and others allows remote attackers to bypass malware detection via a crafted (1) RAR and (2) ZIP archive.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-20
Vulnerability Consequences:Bypass Security
References:Source: CCN
Type: Secdev - Thierry Zoller Blog
Advisory: AVG Zip evasion / bypass

Source: MISC
Type: UNKNOWN
http://blog.zoller.lu/2009/04/avg-zip-evasion-bypass.html

Source: MITRE
Type: CNA
CVE-2009-1784

Source: CCN
Type: AVG Web site
AVG Antivirus and Security Software

Source: CCN
Type: OSVDB ID: 54715
AVG Multiple Products RAR Archive Scanning Bypass

Source: CCN
Type: OSVDB ID: 54716
AVG Multiple Products ZIP Archive Scanning Bypass

Source: BUGTRAQ
Type: UNKNOWN
20090509 [TZO-20-2009] AVG ZIP evasion / bypass

Source: BID
Type: UNKNOWN
34895

Source: CCN
Type: BID-34895
Multiple AVG Products RAR/ZIP Files Scan Evasion Vulnerability

Source: XF
Type: UNKNOWN
avg-zip-security-bypass(50426)

Source: XF
Type: UNKNOWN
avg-zip-security-bypass(50426)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:avg:avg_anti-virus:6.0.710:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0.251:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0.323:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.1.308:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.1.407:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.5.51:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.5.448:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.5.476:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:8.0:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:*:*:*:*:*:*:*:* (Version <= 8.0.156)

  • Configuration CCN 1:
  • cpe:/a:avg:avg_anti-virus:7.5.448:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.5.476:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.1.407:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.1.308:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0.323:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0.251:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:6.0.710:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:8.0.156:*:*:*:*:*:*:*
  • OR cpe:/a:avg:avg_anti-virus:8.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    avg avg anti-virus 6.0.710
    avg avg anti-virus 7.0
    avg avg anti-virus 7.0.251
    avg avg anti-virus 7.0.323
    avg avg anti-virus 7.1.308
    avg avg anti-virus 7.1.407
    avg avg anti-virus 7.5.51
    avg avg anti-virus 7.5.448
    avg avg anti-virus 7.5.476
    avg avg anti-virus 8.0
    avg avg anti-virus *
    avg avg anti-virus 7.5.448
    avg avg anti-virus 7.5.476
    avg avg anti-virus 7.1.407
    avg avg anti-virus 7.1.308
    avg avg anti-virus 7.0.323
    avg avg anti-virus 7.0.251
    avg avg anti-virus 7.0
    avg avg anti-virus 6.0.710
    avg avg anti-virus 8.0.156
    avg avg anti-virus 8.0